SOC Program Lead
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
Location: Leiden, Netherlands Working Model: Hybrid (2 days onsite, flexibility offered) Contract Duration: 12 months Language: Fluent English required Overview Our client is looking for a SOC Program Lead to strengthen expertise within the Splunk and SOAR domain as part of a strategic initiative to build and mature SOAR capabilities within the Global SOC. This is not a hands-on engineering position. The ideal candidate will act as a bridge between operational, security, and technical teams, ensuring alignment and successful delivery of the SOC automation roadmap., * Lead and coordinate the development and implementation of SOAR capabilities within the Global SOC.
- Act as the key interface between SOC operations, incident response teams, and technical stakeholders.
- Drive Splunk and SOAR-related initiatives from an operational and program perspective.
- Facilitate communication across teams and ensure successful collaboration.
- Support the evolution of a tierless SOC operating model where analysts also participate in incident response activities.
- Provide guidance and subject matter expertise around SOC processes, SIEM operations, and security automation.
Requirements
- 5+ years of experience in SOC, Security Operations, Cybersecurity Program Management, or related security leadership roles.
- Strong knowledge of: SOC operations SIEM technologies (preferably Splunk) SOAR platforms and security automation Incident Response processes
- Excellent stakeholder management and communication skills.
- Ability to connect business, operational, and technical teams.
- Experience working in an in-house security environment (consulting-only backgrounds are less relevant but not a breaking point).
- Strong organizational and program leadership capabilities.
Ideal Candidate
- SOC Program Lead / SOC Manager/ SOC Lead with Splunk exposure.
- Security Operations professional who understands SIEM/SOAR ecosystems but is not necessarily a hands-on engineer, more on the operational side.
- Strong communicator capable of driving alignment across multiple teams and functions.
- Experience supporting SOC transformation, automation, or modernization initiatives.
Key Selling Points
- Strategic role within a Global SOC transformation program.
- Opportunity to help build and scale SOAR capabilities.
- Flexible hybrid working model.
- Long-term 12-month engagement with high visibility and impact.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
Is Software Engineering Over-Saturated?
Find a Developer Job: 12 Best Job Sites For Developers
The 12 Best Jobs for Software Engineers